Vulnerabilities > Xerox > Altalink C8035 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2021-03-29 CVE-2021-28669 Missing Authorization vulnerability in Xerox products
Xerox AltaLink B80xx before 103.008.020.23120, C8030/C8035 before 103.001.020.23120, C8045/C8055 before 103.002.020.23120 and C8070 before 103.003.020.23120 provide the ability to set configuration attributes without administrative rights.
network
low complexity
xerox CWE-862
7.5
2021-03-04 CVE-2019-18630 Cleartext Storage of Sensitive Information vulnerability in Xerox products
On Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software releases before 101.00x.099.28200, portions of the drive containing executable code were not encrypted thus leaving it open to potential cryptographic information disclosure.
network
low complexity
xerox CWE-312
7.5
2021-03-04 CVE-2019-18629 Unspecified vulnerability in Xerox products
Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software releases before 101.00x.099.28200 allow an attacker to execute an unwanted binary during a exploited clone install.
network
high complexity
xerox
8.1
2019-12-18 CVE-2019-19832 Cross-Site Request Forgery (CSRF) vulnerability in Xerox Altalink C8035 Firmware
Xerox AltaLink C8035 printers allow CSRF.
network
low complexity
xerox CWE-352
8.8